URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: afdt.ch
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 21:42:06 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-16 21:42:06 128.65.195.25h2web23.infomaniak.chNot listedAS29222 Infomaniak-AS- CHyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 21:42:06http://afdt.ch/wp-admin/ehz2v7yeyb7c/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 10:01:33ab13f6f95154d0396465d9bb9d42e49708e2efdd49c259b7189ae2c7c7c2d389docHeodo
2020-10-17 09:19:132b95f52b2f665277c1b271f68b7ac017b7653d398e73877b7c8db4bf2ccaa52cdocHeodo
2020-10-17 08:38:304ff23dc1f01527658819824659e03edb6ee7d16cdf8704e61548acf040415238docHeodo
2020-10-17 08:05:04bf7d2c74845e2e6006ed753d93f64d23813dba57c4f443be01f59915f96aaca4docHeodo
2020-10-17 07:24:36ea065a0dbc3ca645237d0c98e82887ca636451f3fa822c6c0a087a2fe98c230fdocHeodo
2020-10-17 07:01:51c2a2d6dc4e3b3dc13a558016e20a527bf4dcf55a75375a1b4544b23ef8a1adf0docHeodo
2020-10-17 06:53:20cab952f8c6436054516b7fb9b6dc980a0921858a4a312229099f2817b9846340docHeodo
2020-10-17 06:12:437f7aaae8116f26c7d91c5c3d87ab7c7a752e628195c25563cc7c3074669e6c7adocHeodo
2020-10-17 05:44:2685a42a8d612d20af55e105cdd7caa6c881ebae398c26dea03e0cf147e543f917docHeodo
2020-10-17 05:28:57d718b0058aaa9406fd6bfdf6d7f13e8963789c2c0b331e70fd6e8edd6b1f22ebdocHeodo
2020-10-17 04:50:234f1b55b5cbbaa28b0d87b93dd256cebd16df18a51e081378940ad152fd24da8edocHeodo
2020-10-17 04:10:447563b098e425087d70e59bc0ad1d712d39ec6286fc63eaa9a9eea68f9a7ede26docHeodo
2020-10-17 03:39:40252e05a52d4bc9d3d266533b1a75bfab674989b8d3a4f0ff8d898529379329afdocHeodo
2020-10-17 03:25:29d1e952f7b8eac274a9eb54c0ce6e8c6542aaa16cbdf7345c10c79852c2d5bd0ddocHeodo
2020-10-17 03:15:583cf860a4fc48852cfc15307168a655fe09d970de805123a370c888f18b949aaadocHeodo
2020-10-17 02:44:56d19c1e922354570a8700f8dc25900a7c8ae4bee4b08908a4c6cad2309eff1ba1docHeodo
2020-10-17 02:25:57bb96b8f7ca8418e8d16ada7ed78c33abe3bd24d7ca843033cc73e73e4c606fdadocHeodo
2020-10-17 02:01:13db234da6bba5f671c8a6fad07cfc6ad7ce1b078a32f920e2edb4b142167e18dcdocHeodo
2020-10-17 01:35:22eb06448eea7b0d73132945671275ea572688e13de195a89974d8315900ff8cb7docHeodo
2020-10-17 01:01:025990f98a0aeffb24181deb144a8519e54f7695794e545b9ba0cb52fe28e3f987docHeodo
2020-10-17 00:44:4572bc6543f22de398e1374caed638e9a1d24ec0b37a5fa9b5ac10ade7559ab839docHeodo
2020-10-17 00:16:19c40e490d1149a43b982a7c65d5f04d36117a86623374f75bf8d47f31090f8b18docHeodo
2020-10-16 23:54:20c25321d27755dd74dfcb51c16c96a607d16b09b59b1cbe7f025dc89763d9d630docHeodo
2020-10-16 23:17:5070c3e11a1960c379e6be0215b70999623bb37cad12e932cf4d222f70f078c6d2docHeodo
2020-10-16 23:05:17bf79372e0c3a2b7a3b0df0f3994621206443404f5c382b8ad5e5c609c6b0e043docHeodo
2020-10-16 22:42:27c041d525830dc0931ba8595f644dd8464550c8e62933d48ba6801f11460b33a9docHeodo
2020-10-16 22:16:1423600bb2ceb80154b049764a263e10cc02148048a332d10edf6458fc4b2cc34cdocHeodo
2020-10-16 21:42:067bc4797a66cfb8dbdc6f95c5568595d0229200838644a798b7228d1bde86b554docHeodo